CVE-2025-39800
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
15/09/2025
Last modified:
16/01/2026
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
btrfs: abort transaction on unexpected eb generation at btrfs_copy_root()<br />
<br />
If we find an unexpected generation for the extent buffer we are cloning<br />
at btrfs_copy_root(), we just WARN_ON() and don&#39;t error out and abort the<br />
transaction, meaning we allow to persist metadata with an unexpected<br />
generation. Instead of warning only, abort the transaction and return<br />
-EUCLEAN.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 2.6.29 (including) | 6.1.149 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.2 (including) | 6.6.103 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.7 (including) | 6.12.44 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.13 (including) | 6.16.4 (excluding) |
| cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://git.kernel.org/stable/c/33e8f24b52d2796b8cfb28c19a1a7dd6476323a8
- https://git.kernel.org/stable/c/4290e34fb87ae556b12c216efd0ae91583446b7a
- https://git.kernel.org/stable/c/4734255ef39b416864139dcda96a387fe5f33a6a
- https://git.kernel.org/stable/c/da2124719f386b6e5d4d4b1a2e67c440e4d5892f
- https://git.kernel.org/stable/c/f4f5bd9251a4cbe55aaa05725c6c3c32ad1f74b3
- https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html



